-
**Describe the Issue**
Handlers should verify that any service to be restarted has the STIG rule to enable that service is true, and not false.
I.e., Handlers may 'trip' if 'reconfigured' under on…
-
I am running a simple ansible-playbook -i inventory.ini -b playbook.yaml, without fapolicyd running all the ping's are successful, when i activate the policy, I get this:
[WARNING]: sftp transfer m…
-
fapolicyd has support for requesting stats from the daemon on demand at runtime. This issue is for polling and displaying those stats in the UI.
Another issue is going to add support for collectin…
-
I have an application [1] which besides its own "local" sources uses also external sources to either build a specific sub-package or to bundle some other stuff with it.
Packit correctly creates the…
-
```
Mar 24 13:39:44 localhost.localdomain systemd[1]: Starting File Access Policy Daemon...
Mar 24 13:39:44 localhost.localdomain fapolicyd[227009]: Initializing the database
Mar 24 13:39:44 localh…
-
fapolicyd provides application allow listing.
Individuals and organizations are enabling fapolicyd as part of their defence-in-depth/security strategy.
FreeIPA installation fails when fapolicyd is…
-
Need parsing implementations for `watch_fs` and `syslog_format`
ht: @tparchambault
-
packages
- fapolicyd-dnf-plugin-1.0.3-2.fc34.noarch
- fapolicyd-selinux-1.0.3-2.fc34.noarch
- fapolicyd-1.0.3-2.fc34.x86_64
I've been testing fapolicyd and have some notes when using default rul…
maage updated
8 months ago
-
The template for `service_enabled` creates new criterions for `package_installed` instead of extending.
If a rule for the package installed already exists, this will end up creating two similar OVA…
-
fapolicyd exempts the root user, but doesn't check the uid of child processes, thereby exempting them too even if they aren't root
so any programs running with bwrap or firejail don't have fapolicy…